Re: ipfw: 65534 deny

From: James Housley (jim_at_Thehousleys.net)
Date: 10/19/04

  • Next message: enterprise_at_realvnc.com: "Re: fake"
    Date: Tue, 19 Oct 2004 07:32:16 -0400
    To: spidey@act.co.za
    
    
    

    Spidey Knepscheld wrote:
    > Hi Guys
    >
    > When I restart my fw it takes between 1 to 10 min before restart it runs
    > a list looking like this :
    >
    > ipfw: 65534 deny TCP or UDP x.x.x.x port x.x.x.x port in via fxp1
    >
    > where x.x.x.x is the ip's followed by a port nr.
    >
    > I do understand that it needs to kill the connections but runnign for
    > 10min is too long and if I could see the ip's I can try to find the
    > problem parts of the network
    > The run is to fast for me to see what ip's are running and I would like
    > look at that list is it possible and if so how do I get it.
    >
    >
    > Hope this makes sense
    >

    I believe you are looking for /var/log/security

    Jim

    -- 
    /"\   ASCII Ribbon Campaign  .
    \ / - NO HTML/RTF in e-mail  .
      X  - NO Word docs in e-mail .
    / \ -----------------------------------------------------------------
    jeh@FreeBSD.org      http://www.FreeBSD.org     The Power to Serve
    jim@TheHousleys.Net  http://www.TheHousleys.net
    ---------------------------------------------------------------------
    Documentation is alot like sex.  When it's good, it's very, very good.
    And when it's bad, it's still better than nothing.
    
    



  • Next message: enterprise_at_realvnc.com: "Re: fake"